InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Unmasking Shai-Hulud: Defending Against the Latest npm Supply Chain Attack

Presented by

Mike McGuire, Senior Software Solution Manager and Grant Robertson, Product Manager

About this talk

In September 2025, the Shai-Hulud worm compromised over 500 npm packages, exploiting phishing and self-replicating malware to steal credentials and disrupt software supply chains. This brief webinar explores the attack’s mechanics, from phishing maintainer credentials to spreading malicious updates, and its devastating impact, including cloud breaches and ransomware risks. Learn how Black Duck’s Software Composition Analysis (SCA) tool rapidly detects and remediates vulnerabilities like Shai-Hulud, empowering teams to secure their open-source dependencies in minutes. Join us for a concise overview and live demo showcasing actionable defense strategies for developers and security professionals.
Black Duck

Black Duck

85820 subscribers110 talks
True Scale Application Security
Black Duck is now defining the next frontier of application security. With the avalanche of AI-generated code plus expanding regulatory pressure, you need solutions that can scale, adapt, and keep pace with the demands of your business. Black Duck meets the demands of modern software development with True Scale Application Security. In the cloud or on-prem, 100,000 lines of code or 100 million. For safety-critical systems with stringent compliance requirements or modern web apps deploying 100 times per day. Our flexible, scalable, high-precision solutions enable you to code with confidence.
Related topics